Sign inSign up
Codecov Frontend

dhi.io/codecov-frontend

Codecov Frontend 26.x

CIS
linux/amd64
debian 13
Tags:

26, 26-debian, 26-debian13, 26.7, 26.7-debian, 26.7-debian13, 26.7.6, 26.7.6-debian, 26.7.6-debian13

Index digest:

sha256:9d89f767087ec7e9a2235dc801b54163e093eda57c2afdd2244889e6ebb0cb97

Manifest digest:

sha256:cf940f350a725567bab73b342145e2e8140fc261769c2f95c27b99093b9f183c

Size

12.51 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/codecov-frontend:26

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/codecov-frontend:26 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/codecov-frontend@sha256:cee285f910942b7b13aacd01b423ebf5d37341c048f5f5da091cc274e855d985
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/codecov-frontend@sha256:65c3ffb71d1995e9f2896da282dab4b65459c997cf39e0ea48202e1bacd80aef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/codecov-frontend@sha256:76ad2ba443108449677b4735fcf2c19067f251faa1df46ab807137c1e17213a5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/codecov-frontend@sha256:86f4151cbdec34c6c0e7f87081cedf126784948bb6e324e5ea3829143d783b12
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/codecov-frontend@sha256:9d293235595dfd18a3bf57ab2a893c56441da93d08b99e51b614b9b82ceefd2c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/codecov-frontend@sha256:43333409cec406c6b012562ba58a965627d7dd760fabebe4cc26ec81383b0432
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/codecov-frontend@sha256:a5249d4f33d9381268bebb831cc09b5de8348d146815b18ce755f7e55f7d072a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/codecov-frontend@sha256:c41ae3b219f98f46b6a987cbcd2b7e85bb8297b7d45b408136660690f449cf7c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/codecov-frontend@sha256:c4b2da7f0aa3c0ba2989552eea2731249a2781d096e571dab91ba3ea4fb82225
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/codecov-frontend@sha256:2707182494a985602d6e3b9510f226aea3e9a1679ccc634136f5eee5147698bc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/codecov-frontend@sha256:8cda82348de212eca79539361ac658ecf71a765feabb5bf7ef84c07e4981aff4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/codecov-frontend@sha256:06310961356663b7e7aad340999037ffd521f4f5fd5139ba20bfa5a4ab8e5250
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/codecov-frontend@sha256:cdaded3bf02be3916494e31c860c0907b88742ffadc8b5887df0b0012516c27f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/codecov-frontend@sha256:ac6894b0e5983bcb912f52a8539ed3e6bfc99ae873516e65ca6f8eb307ae229a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/codecov-frontend@sha256:d0d3752238cc1b6522dfe7c2b3eec37a1e2837cce112a14b454e923a42458e4e